CVE-2024-32859: Input Validation
Published Jun 13, 2024
·Updated
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
Affected Software
46 affected components
All of the following
Dell Xps 8960 Firmware<2.6.0
Dell Xps 8960
All of the following
Dell Xps 8950 Firmware<1.19.0
Dell Xps 8950
All of the following
Dell Inspiron 3502 Firmware<1.16.0
Dell Inspiron 3502
All of the following
Dell Inspiron 15 3521 Firmware<1.14.0
Dell Inspiron 15 3521
All of the following
Dell Inspiron 15 3510 Firmware<1.19.0
Dell Inspiron 15 3510
All of the following
Dell Aurora R16 Firmware<2.7.0
Dell Aurora R16
All of the following
Dell Alienware X17 R2 Firmware<1.20.0
Dell Alienware X17 R2
All of the following
Dell Alienware X17 R1 Firmware<1.22.0
Dell Alienware X17 R1
All of the following
Dell Alienware X15 R2 Firmware<1.20.0
Dell Alienware X15 R2
All of the following
Dell Alienware X15 R1 Firmware<1.22.0
Dell Alienware X15 R1
All of the following
Dell Alienware X14 Firmware<1.18.0
Dell Alienware X14
All of the following
Dell Alienware M17 R4 Firmware<1.21.0
Dell Alienware M17 R4
All of the following
Dell Alienware M17 R3 Firmware<1.27.0
Dell Alienware M17 R3
All of the following
Dell Alienware M15 R4 Firmware<1.21.0
Dell Alienware M15 R4
All of the following
Dell Alienware M15 R3 Firmware<1.27.0
Dell Alienware M15 R3
All of the following
Dell Alienware Aurora Ryzen Edition R14 Firmware<2.18.0
Dell Alienware Aurora Ryzen Edition R14
All of the following
Dell Alienware Aurora R15 Amd Firmware<1.13.0
Dell Alienware Aurora R15 Amd
All of the following
Dell Alienware Aurora R15 Firmware<1.12.0
Dell Alienware Aurora R15
All of the following
Dell Alienware Aurora R13 Firmware<1.19.0
Dell Alienware Aurora R13
All of the following
Dell Alienware Aurora R12 Firmware<1.1.25
Dell Alienware Aurora R12
All of the following
Dell Alienware Aurora R11 Firmware<1.0.24
Dell Alienware Aurora R11
All of the following
Dell Alienware Aurora R10 Firmware<2.8.0
Dell Alienware Aurora R10
All of the following
Dell Alienware Area 51m R2 Firmware<1.26.0
Dell Alienware Area 51m R2
Event History
Jun 13, 2024
CVE Published
via MITRE·12:39 PM
Data Sourced
via MITRE·12:39 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32859?
CVE-2024-32859 has been categorized as a high severity vulnerability that can lead to code execution.
2
How do I fix CVE-2024-32859?
To fix CVE-2024-32859, update the affected Dell firmware to the latest version available.
3
What systems are affected by CVE-2024-32859?
CVE-2024-32859 affects various Dell computers, including specific models of XPS, Inspiron, Aurora, and Alienware.
4
What type of vulnerability is CVE-2024-32859?
CVE-2024-32859 is an improper input validation vulnerability in an externally developed component.
5
Can an attacker exploit CVE-2024-32859 remotely?
No, exploitation of CVE-2024-32859 requires local access to the system by a high privileged attacker.